This page contains press release content distributed by XPR Media. Members of the editorial and news staff of the USA TODAY Network were not involved in the creation of this content.

Socket Announces Support for PHP with Composer and Packagist Integration

Developers Can Now Search, Analyze, and Secure PHP Dependencies with AI-Powered Supply Chain Protection

It would be careless to hope there won’t be more attacks on PHP packages, so I’m glad to see more focus on proactive security tooling in the PHP ecosystem.”

— Nils Adermann, co-creator of Composer and co-founder of Private Packagist

SAN FRANCISCO, CA, UNITED STATES, February 17, 2026 /EINPresswire.com/ — Socket today announced full support for the PHP ecosystem, adding Composer and Packagist integration to its software supply chain security platform. PHP developers can now search and explore packages, generate Software Bills of Materials (SBOMs) from Composer projects, and detect supply chain risks across their PHP dependencies.

PHP remains the dominant server-side language on the web, powering roughly 75% of all websites with a known server-side language. From WordPress and Laravel to Drupal and Magento, PHP underpins a vast portion of the modern internet. Packagist, the primary repository for Composer, hosts more than 440,000 packages and over 5 million versions, with more than 169 billion package installations served since 2012. Composer downloads exceed 2 billion packages per month.

The scale and openness that make the PHP ecosystem powerful also introduce supply chain considerations.

Composer enforces important boundaries around dependency execution, but its plugin model and flexible packaging system mean that installing third-party packages inherently extends application attack surfaces. In addition, most Packagist packages are distributed as ZIP archives generated on demand from GitHub repositories, which makes stable artifact verification through checksums or signatures difficult. In large open registries, these characteristics can be abused in ways traditional vulnerability scanners are not designed to detect.

Nils Adermann, co-creator of Composer and co-founder of Private Packagist, shared this perspective on supply chain security in the PHP ecosystem:

“Supply chain attacks target the trust you place in your dependencies, not your own code. Composer and Packagist have built-in safeguards, but PHP application attack surfaces grow with every package and plugin. It would be careless to hope there won’t be more attacks on PHP packages, so I’m glad to see more focus on proactive security tooling in the PHP ecosystem.”

Socket’s platform goes beyond scanning for known CVEs. Its AI-powered analysis inspects package contents and behavior to detect zero-day threats, typosquatting, backdoors, obfuscated code, and other supply chain risks before they impact production systems.

With today’s release, PHP developers can:

• Search and explore any Composer package to view security scores and dependency insights
• Generate SBOMs from composer.lock or composer.json files
• Detect vulnerabilities matched against GitHub Security Advisories, enriched with CISA KEV, CWE classifications, and EPSS exploit probability scores
• Analyze install-time and runtime behavior, including plugin definitions and autoload entry points
• Monitor new and updated packages published to Packagist

Socket supports both lockfile-based and manifest-only workflows. When a composer.lock file is present, it is treated as the source of truth for exact dependency versions. In projects without lockfiles, Socket resolves version constraints against Packagist to provide high-level dependency visibility.

PHP support is rolling out in phases. Package search and browsing are available immediately. SBOM generation, security scanning, and full supply chain protection are currently in experimental release and will roll out broadly in the coming weeks.

PHP support expands Socket’s mission to proactively secure open source ecosystems at scale. Future enhancements include AI-generated package summaries, version diff analysis, and enhanced Composer workspace and monorepo support.

For more information, visit https://socket.dev

About Socket

Socket is the AI-native security platform that keeps malicious and vulnerable code out of your organization, whether it’s installed by developers or AI agents.

Socket protects 14,000+ organizations and 1.2M+ repositories, securing 2+ million commits every month. Socket identifies 1,000+ supply chain attacks every week.

Built by the creators of open source tools downloaded over a billion times a month, Socket is trusted by leading companies across tech, retail, healthcare, finance, government, and telecommunications.

Sarah Gooding
Socket Inc
press@socket.dev
Visit us on social media:
LinkedIn
Bluesky
Instagram
X

Legal Disclaimer:

EIN Presswire provides this news content “as is” without warranty of any kind. We do not accept any responsibility or liability
for the accuracy, content, images, videos, licenses, completeness, legality, or reliability of the information contained in this
article. If you have any complaints or copyright issues related to this article, kindly contact the author above.

Information contained on this page is provided by an independent third-party content provider. XPRMedia and this Site make no warranties or representations in connection therewith. If you are affiliated with this page and would like it removed please contact pressreleases@xpr.media

From Jacksonville to the World: Autoland Fuels Giving with SMBS Ministries and the Tim Tebow Foundation

From Jacksonville to the World: Autoland Fuels Giving with SMBS Ministries and the Tim Tebow Foundation

Autoland Jax deepens its charity mission by supporting SMBS Ministries and Tim Tebow Foundation, turning every car sale

February 20, 2026

Capital Q® CEO Publishes Book on Current State of Venture Capital

Capital Q® CEO Publishes Book on Current State of Venture Capital

“BROKEN: How Full-Stack Venture Capital Funds® Will Fix the Broken Venture Capital Industry” now available MAITLAND,

February 20, 2026

Alpha Zero Logistics Announces Partnership with Turvo to Power Its Next-Generation Managed Transportation Platform

Alpha Zero Logistics Announces Partnership with Turvo to Power Its Next-Generation Managed Transportation Platform

Collaboration strengthens AZL's ability to design custom, integrated supply chain solutions for complex shipper

February 20, 2026

IVC Expands Custom Engineering Capabilities with Corrosion-Resistant Camera Solution

IVC Expands Custom Engineering Capabilities with Corrosion-Resistant Camera Solution

Application-specific design addresses acid exposure, humidity, and washdown conditions that exceed conventional camera

February 20, 2026

SlotMatic Introduces SquadMatic: The Autonomous AI-Native Studio Transforming Slot Development

SlotMatic Introduces SquadMatic: The Autonomous AI-Native Studio Transforming Slot Development

LONDRA, PA, UNITED KINGDOM, February 19, 2026 /EINPresswire.com/ — There is a substantial difference between using

February 20, 2026

Readiness Management Support Awarded Engineering Support Services Contract at 332d AEW, Middle East, and Southwest Asia

Readiness Management Support Awarded Engineering Support Services Contract at 332d AEW, Middle East, and Southwest Asia

This award reflects the Government’s confidence in RMS’s ability to deliver dependable engineering support in

February 20, 2026

TTA Named to Training Industry’s 2026 Leadership Training Watch List for Ninth Consecutive Year

TTA Named to Training Industry’s 2026 Leadership Training Watch List for Ninth Consecutive Year

TTA has been named to Training Industry’s 2026 Leadership Training Watch List, marking the ninth consecutive year the

February 20, 2026

Bentley Bickerstaff Christopher to Appear on Women In Power TV

Bentley Bickerstaff Christopher to Appear on Women In Power TV

FL, UNITED STATES, February 19, 2026 /EINPresswire.com/ — Bentley Bickerstaff Christopher, financial services leader

February 20, 2026

Influential Women Spotlights Pilar Veru: Championing Equity, Language Access, and Sustainable Impact in Education

Influential Women Spotlights Pilar Veru: Championing Equity, Language Access, and Sustainable Impact in Education

CLIFFSIDE PARK, NJ, UNITED STATES, February 19, 2026 /EINPresswire.com/ — Accomplished Education Leader and Global

February 20, 2026

QCS Integrates Click-Ins’ Visual Intelligence Platform to Transform Auto Claims Processing

QCS Integrates Click-Ins’ Visual Intelligence Platform to Transform Auto Claims Processing

QCS integrates Click-Ins' Visual AI to streamline auto claims, reduce customer churn, and drive higher CSI scores for a

February 20, 2026

Arthroscopy Association of North America Advocacy Helps Expand Access for Innovative Orthopedic Treatment

Arthroscopy Association of North America Advocacy Helps Expand Access for Innovative Orthopedic Treatment

Category I CPT® Code Granted for an Implantable Shock Absorber for Knee Osteoarthritis The Implantable Shock Absorber

February 20, 2026

Amwins Announces New Hospitality Practice

Amwins Announces New Hospitality Practice

Industry-aligned team brings greater focus, expertise and market access for hospitality risks. CHARLOTTE, NC, UNITED

February 20, 2026

Kent Imaging Celebrates 20 Years of MedTech Innovation

Kent Imaging Celebrates 20 Years of MedTech Innovation

Calgary‑born company, Kent Imaging, marks two decades of advancing tissue assessment through light-based imaging

February 20, 2026

Franchise Business Review Appoints John Coughlin as Director of Growth

Franchise Business Review Appoints John Coughlin as Director of Growth

The leadership addition reinforces FBR’s commitment to delivering independent benchmark research and strategic insights

February 20, 2026

DR. NIKHIL BHAYANI SELECTED FOR IAOTP’S GLOBAL ICON AWARD IN HEALTHCARE

DR. NIKHIL BHAYANI SELECTED FOR IAOTP’S GLOBAL ICON AWARD IN HEALTHCARE

The International Association of Top Professionals (IAOTP) will honor Dr. Nikhil Bhayani at their annual awards gala in

February 20, 2026

Industry Urged to Strengthen HACCP Training and FSVP Training Amid Declining USDA & FDA Inspection Capacity

Industry Urged to Strengthen HACCP Training and FSVP Training Amid Declining USDA & FDA Inspection Capacity

Watchdog groups report that while the number of regulated facilities has increased, the volume of inspections has

February 20, 2026

Steelhead Productions Publishes 2025 ESG Review, Advancing Measurable Environmental and Social Impact

Steelhead Productions Publishes 2025 ESG Review, Advancing Measurable Environmental and Social Impact

Exhibit leader reports increased waste diversion, expanded volunteer impact, and continued progress in expanding

February 20, 2026

Sean Young’s Noir Mystery THE DUMMY DETECTIVE Now Streaming Free on Tubi

Sean Young’s Noir Mystery THE DUMMY DETECTIVE Now Streaming Free on Tubi

The darkly comic whodunnit led by Sean Young expands its U.S. reach, now available to stream free with ads on Tubi. NEW

February 20, 2026

Trential’s TruEnroll Gives University Admissions Teams AI-Powered Tools to Evaluate, Verify, and Normalize Transcripts

Trential’s TruEnroll Gives University Admissions Teams AI-Powered Tools to Evaluate, Verify, and Normalize Transcripts

From grading equivalencies and accreditation scanning to AI fraud detection and checks, TruEnroll manages credential

February 20, 2026

ePac Flexible Packaging Scaling Up: New Phoenix Site and Expanded Capacity Across North America

ePac Flexible Packaging Scaling Up: New Phoenix Site and Expanded Capacity Across North America

Strategic expansion includes a new site and increased capacity and new technology in Atlanta, Philadelphia, and

February 20, 2026

Whalen Law Office Welcomes Former SEC Enforcement Leader James ‘Jim’ Etri as Of Counsel

Whalen Law Office Welcomes Former SEC Enforcement Leader James ‘Jim’ Etri as Of Counsel

Former Senior Enforcement Leader with the U.S. Securities and Exchange Commission Joins Criminal Law Firm Based in

February 20, 2026

LET MUSIC FILL MY WORLD CELEBRATES THE RETURN OF THE ‘MUSIC MATTERS CHALLENGE’ STARTING FEBRUARY 19TH

LET MUSIC FILL MY WORLD CELEBRATES THE RETURN OF THE ‘MUSIC MATTERS CHALLENGE’ STARTING FEBRUARY 19TH

Non Profit’s Tentpole Campaign Centers On Awareness For The Importance of Nationwide Music Education The Music Matters

February 20, 2026

Eskin Fundraising Training Primer on Raising More Money In 2026

Eskin Fundraising Training Primer on Raising More Money In 2026

Following the art and science of discovery, cultivation, solicitation and stewardship leads to the next major or

February 20, 2026

Old Trapper Official Beef Jerky of the 2026 Mountain West Basketball Championships

Old Trapper Official Beef Jerky of the 2026 Mountain West Basketball Championships

Our conference partnerships are incredibly important to us because they connect Old Trapper with passionate, loyal fan

February 20, 2026

BioTechnique Launches Expanded QC Services: Advanced Analytical, Lyophilization Development, Microbiology, and more

BioTechnique Launches Expanded QC Services: Advanced Analytical, Lyophilization Development, Microbiology, and more

BioTechnique expands QC services with advanced analytics, lyophilization development, microbiology, monitoring, and

February 20, 2026

GivenGain Partners with Bike New York to Enable Participant-Led Fundraising in Connection to the TD Five Boro Bike Tour

GivenGain Partners with Bike New York to Enable Participant-Led Fundraising in Connection to the TD Five Boro Bike Tour

New partnership provides fundraising technology that empowers riders to support Bike New York’s mission through

February 20, 2026

Dobson Fiber Selects Vitruvi Software to Support Project Delivery

Dobson Fiber Selects Vitruvi Software to Support Project Delivery

Dobson adopts the Vitruvi platform to strengthen project visibility and coordination across fiber construction programs

February 20, 2026

How MyHomeQuote is using Predictive Intelligence to boost lead generation efficiency for home improvement contractors

How MyHomeQuote is using Predictive Intelligence to boost lead generation efficiency for home improvement contractors

MyHomeQuote introduced Performance Prediction Algorithm, technology designed to move campaigns from reactive

February 20, 2026

Enbridge Ohio Natural Gas Rates Leap 53%

Enbridge Ohio Natural Gas Rates Leap 53%

Akron natural gas rates surged 53% as Enbridge Gas Ohio raised its February PTC to $7.96 per MCF. Shop fixed-rate plans

February 20, 2026

Duke Energy Ohio Gas Rates Increase 122% in 2026

Duke Energy Ohio Gas Rates Increase 122% in 2026

Cincinnati natural gas rates surged 122% as Duke Energy Ohio raised its February PTC rate after Winter Storm Fern. Shop

February 20, 2026

The 2026 G2 Best Software Awards and the Learning Awards recognize Skillable’s innovative virtual IT labs platform

The 2026 G2 Best Software Awards and the Learning Awards recognize Skillable’s innovative virtual IT labs platform

Users rated Skillable as a 2026 G2 Best Education Software Product and Best IT Management Software Product, industry

February 20, 2026

QuiqNest Launches Nestability™ to Help Homebuyers ‘Know Before You Tour’ with Pre-Purchase Solar Integration

QuiqNest Launches Nestability™ to Help Homebuyers ‘Know Before You Tour’ with Pre-Purchase Solar Integration

New calculator shows true monthly cost with mortgage-integrated solar before buyers tour properties or make offers.

February 20, 2026

Wes Scantlin & Puddle of Mudd Unveil New Single “Rain” via LoudHit Records and Virgin Music Group

Wes Scantlin & Puddle of Mudd Unveil New Single “Rain” via LoudHit Records and Virgin Music Group

LOS ANGELES, CA, UNITED STATES, February 19, 2026 /EINPresswire.com/ — Rock frontman Wes Scantlin marks a bold new era

February 20, 2026

ScribeEMR to Exhibit ScribeRyte AI Clinical Documentation Solutions at HIMSS (Booth #645)

ScribeEMR to Exhibit ScribeRyte AI Clinical Documentation Solutions at HIMSS (Booth #645)

WOBURN, MA, UNITED STATES, February 19, 2026 /EINPresswire.com/ — ScribeEMR, a leading provider of AI-powered

February 20, 2026

SynDevRx Publishes Data On Evexomostat Establishing New Metabo-Oncology Therapeutic Modality

SynDevRx Publishes Data On Evexomostat Establishing New Metabo-Oncology Therapeutic Modality

Frontiers in Oncology publication positions metabo-oncology as a differentiated platform for pharma and a novel,

February 20, 2026

Savant Report Uncovers Finance AI Automation Gap as 76% Plan Investment, Only 6% Deliver Advanced Implementation

Savant Report Uncovers Finance AI Automation Gap as 76% Plan Investment, Only 6% Deliver Advanced Implementation

Execution lags ambition for AI automation in finance, with governance the barrier to adoption Enterprise teams are

February 20, 2026

Palisades Therapeutics Receives FDA Clearance to PROCEED with Phase 2a PTSD Trial of PT150 in U.S. Veterans

Palisades Therapeutics Receives FDA Clearance to PROCEED with Phase 2a PTSD Trial of PT150 in U.S. Veterans

DoD-Funded Study Accelerates Novel PTSD Mechanism into Trials; Proven Alcohol Safety Profile De-Risks Program for

February 20, 2026

Georgia SoftWorks, Mobilis and AccuSpeechMobile confirms major Voice Automation interest at Zebra NALA SKO/CPS 2026

Georgia SoftWorks, Mobilis and AccuSpeechMobile confirms major Voice Automation interest at Zebra NALA SKO/CPS 2026

Voice Automation draws crowds at Zebra NALA SKO/CPS 2026 as Georgia Softworks, AccuspeechMobile & Mobilis perform

February 20, 2026

Data Shows Strong Correlation Between Brand Identity and Customer Acquisition in Dallas

Data Shows Strong Correlation Between Brand Identity and Customer Acquisition in Dallas

In Dallas, a brand's visual identity acts as its first sales pitch. Consistency and quality are what build immediate

February 20, 2026

Trojan Horse Media and PLR Group Inc. Announce Collaboration to Develop Branded Storytelling and Documentary Projects

Trojan Horse Media and PLR Group Inc. Announce Collaboration to Develop Branded Storytelling and Documentary Projects

Trojan Horse Media & PLR Group Inc. partner to blend documentary storytelling and marketing insight, creating

February 20, 2026